Bug#988109: mqtt-client: CVE-2019-0222

Andreas Beckmann anbe at debian.org
Wed May 5 21:12:34 BST 2021


Source: mqtt-client
Version: 1.14-1
Severity: serious
Tags: security
User: debian-qa at lists.debian.org
Usertags: piuparts
Control: fixed -1 1.14-1+deb9u1

Hi,

CVE-2019-0222 is fixed in stretch-security but not buster, making
upgrades difficult since stretch-security has a newer version than
buster.
Please upload the fix to buster, too.

 mqtt-client | 1.14-1        | stretch          | source
 mqtt-client | 1.14-1        | buster           | source
 mqtt-client | 1.14-1+deb9u1 | stretch-security | source
 mqtt-client | 1.16-1        | bullseye         | source
 mqtt-client | 1.16-1        | sid              | source


Andreas



More information about the pkg-java-maintainers mailing list